- EPSS 4.17%
- Veröffentlicht 22.07.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple integer overflows in the (1) PL_Base64Decode and (2) PL_Base64Encode functions in nsprpub/lib/libc/src/base64.c in Mozilla Firefox before 3.0.12, Thunderbird before 2.0.0.24, and SeaMonkey before 1.1.19 allow remote attackers to cause a deni...
- EPSS 19.94%
- Veröffentlicht 22.07.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The nsXULTemplateQueryProcessorRDF::CheckIsSeparator function in Mozilla Firefox before 3.0.12, SeaMonkey 2.0a1pre, and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arb...
- EPSS 6.14%
- Veröffentlicht 22.07.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Firefox before 3.0.12 and Thunderbird allow remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via vectors involving double frame construction, related to (1) nsHTMLContentSink.cp...
- EPSS 4.98%
- Veröffentlicht 22.07.2009 18:30:00
- Zuletzt bearbeitet 25.06.2025 16:56:21
The JavaScript engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) nsDOMClassInfo.cpp, (2...
- EPSS 10.79%
- Veröffentlicht 20.07.2009 18:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Firefox before 2.0.0.19 and 3.x before 3.0.5, SeaMonkey, and Thunderbird allow remote attackers to cause a denial of service (memory consumption and application crash) via a large integer value for the length property of a Select object, a re...
CVE-2009-2210
- EPSS 5.53%
- Veröffentlicht 25.06.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Thunderbird before 2.0.0.22 and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a multipart/alternative e-mail message containing a text/enhanced part that...
CVE-2009-1392
- EPSS 15.73%
- Veröffentlicht 12.06.2009 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The browser engine in Mozilla Firefox 3 before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vect...
CVE-2009-1832
- EPSS 10.37%
- Veröffentlicht 12.06.2009 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors involving "double fra...
CVE-2009-1833
- EPSS 10.37%
- Veröffentlicht 12.06.2009 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The JavaScript engine in Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vec...
CVE-2009-1836
- EPSS 2.03%
- Veröffentlicht 12.06.2009 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 use the HTTP Host header to determine the context of a document provided in a non-200 CONNECT response from a proxy server, which allows man-in-the-middle attacke...